The Surat Cyber Crime Cell has arrested an 18-year-old man from Uttar Pradesh's Kanpur for allegedly developing and supplying fake banking applications and malware-infected APK files to cybercriminal networks operating across India. Police said the accused, identified as Rohit Virendra Singh Shakya, allegedly used artificial intelligence tools and online platforms such as Telegram to create malicious software that was later used in cyber fraud activities. Investigators said the accused had studied only up to Class 11 but developed technical capabilities to create customised applications for criminal groups.
According to police officials, the accused allegedly began creating malicious APK files at the age of 16 using AI-based tools and other digital resources. These applications were reportedly designed to compromise mobile devices and extract sensitive information, including banking details and one-time passwords (OTPs). During the investigation, authorities found that cybercrime groups operating from Jharkhand's Jamtara region, as well as networks in Haryana and Rajasthan, were allegedly obtaining such applications from the accused for carrying out financial fraud.
The alleged network came to light during the investigation of a cyber fraud case registered in Surat. In May 2026, a victim reportedly received an APK file through WhatsApp that closely resembled the official Punjab National Bank PNB One application. After downloading and installing the fake application, the victim's mobile phone was allegedly compromised, resulting in the transfer of Rs 5 lakh from an account in Prime Co-operative Bank to an account in Union Bank within minutes. Following the complaint, the Surat Cyber Crime Cell launched an investigation that eventually led officers to the accused.
Also Read: Mumbai Police Expose Insurance Fraud Network, Arrest 12 From Fake Call Centres
A team of cybercrime officials and technology experts conducted a raid at a hotel in Kanpur and arrested Shakya. Police seized electronic devices, including his laptop and mobile phone, for further examination. During questioning, investigators allegedly found that he developed two separate applications — one intended for installation on victims' devices and another functioning as an administrative control application. Through the admin application, cybercriminals could reportedly access OTPs, banking information, and other sensitive data in real time.
Police said the accused allegedly operated the service through a subscription-based model, charging around Rs 15,000 for initial software deployment and another Rs 15,000 per month for continued access and support. Investigators also claimed that he created customised fake applications based on requirements from clients, including fraudulent versions resembling banking, government, payment, and commercial service applications. These reportedly included fake versions linked to PNB, SBI, Axis Bank, UCO Bank, BigBasket, American Express, and RTO challan services.
Authorities said further investigation is underway to identify and arrest other members connected to the alleged cybercrime network. The case highlights the growing use of artificial intelligence and digital platforms by cybercriminal groups to develop sophisticated fraud tools. Cybersecurity officials have advised users to avoid downloading APK files from unknown sources and to verify applications through official banking and service platforms before installation.
Also Read: Chhattisgarh Opens New Opportunities For Ex-Agniveers With 10% Government Job Quota